CVE-2021-22101
27.10.2021, 15:15
Cloud Controller versions prior to 1.118.0 are vulnerable to unauthenticated denial of Service(DoS) vulnerability allowing unauthenticated attackers to cause denial of service by using REST HTTP requests with label_selectors on multiple V3 endpoints by generating an enormous SQL query.Enginsight
Vendor | Product | Version |
---|---|---|
cloudfoundry | capi-release | 𝑥 < 1.118.0 |
cloudfoundry | cf-deployment | 𝑥 < 16.24.0 |
𝑥
= Vulnerable software versions